blob: e554ce75d0a48eafc359884c43ad22b2b57ded92 [file] [log] [blame]
id: GO-2025-3801
modules:
- module: github.com/babylonlabs-io/babylon
vulnerable_at: 1.1.0
- module: github.com/babylonlabs-io/babylon/v2
versions:
- introduced: 2.0.0
- fixed: 2.1.0
vulnerable_at: 2.0.0
summary: |-
Babylon vulnerable to chain halt when a message modifies the validator set at
the epoch boundary in github.com/babylonlabs-io/babylon
ghsas:
- GHSA-rj53-j6jw-7f7g
references:
- advisory: https://github.com/babylonlabs-io/babylon/security/advisories/GHSA-rj53-j6jw-7f7g
- fix: https://github.com/babylonlabs-io/babylon/pull/1244/files
- web: https://boiling-lake-106.notion.site/2025-06-18-Babylon-Genesis-Chain-Halt-Post-Mortem-229f60cc1b5f80b7adf5e3ea0541ea87
- web: https://github.com/babylonlabs-io/babylon/releases/tag/v2.1.0
source:
id: GHSA-rj53-j6jw-7f7g
created: 2025-07-21T16:55:20.353185789Z
review_status: UNREVIEWED